cpe:/a:webportal:webportal_cms:0.6.0 cpe:/a:webportal:webportal_cms:0.6_beta cpe:/a:webportal:webportal_cms:0.7.3 cpe:/a:webportal:webportal_cms:0.7.4 CVE-2008-4345 2008-09-30T14:15:08.593-04:00 2017-09-28T21:32:07.273-04:00 7.5 NETWORK LOW NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2008-10-01T10:25:00.000-04:00 ALLOWS_OTHER_ACCESS BID 31156 SECUNIA 31784 EXPLOIT-DB 6443 VUPEN ADV-2008-2560 XF webportalcms-download-sql-injection(45113) SQL injection vulnerability in download.php in WebPortal CMS 0.7.4 and earlier allows remote attackers to execute arbitrary SQL commands via the aid parameter.